logo

GraphAlgo Scam: Lazarus Hackers Register Real US LLCs to Spread Malware

ID: e7b962a8-f0c6-53ee-9ff6-91679359884b

STIX ID: report--e7b962a8-f0c6-53ee-9ff6-91679359884b

Feed Name: HackRead

Threat Score
85/100

Date Published: 2026-04-10

Date Updated: 2026-04-22

Author: Deeba Ahmed

...
...

ReversingLabs researchers uncovered the GraphAlgo campaign, attributed to the Lazarus Group, which lures blockchain developers with fake job offers and sham US companies; attackers use typosquatted GitHub accounts, rewritten git histories, and malicious release artifacts to deliver a Remote Access Trojan that reports successful infections via Telegram/Slack and logs activity to the Sepolia testnet.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.